DocumentCode
2970702
Title
Federated Authentication and Authorization: A Case Study
Author
Boehm, Oliver ; Caumanns, Joerg ; Franke, Markus ; Pfaff, Oliver
Author_Institution
Frunhofer ISSST, Berlin
fYear
2008
fDate
15-19 Sept. 2008
Firstpage
356
Lastpage
362
Abstract
The loose coupling of services is a key characteristic for modern IT-systems based on SOA. This paper analyzes the design and realization of SOA security in a SOA-compliant fashion. It focuses on federated authentication and authorization based on Web services security technologies. The SOA-style infrastructure of the eCR specification is used as a practical case study. eCR systems address the exchange of medical data within regional healthcare networks. Adequate IT-security and especially federated authentication and authorization are imperative for eCR systems.
Keywords
Web services; authorisation; message authentication; software architecture; IT-systems; SOA security; SOA-compliant fashion; SOA-style infrastructure; Web services security technologies; authorization; federated authentication; medical data exchange; regional healthcare networks; Authentication; Authorization; Contracts; Data security; Hospitals; Medical services; Protection; Semiconductor optical amplifiers; Service oriented architecture; Web services; Authentication; Authorization; Enterprise SOA; Federation; electronic Case Records;
fLanguage
English
Publisher
ieee
Conference_Titel
Enterprise Distributed Object Computing Conference, 2008. EDOC '08. 12th International IEEE
Conference_Location
Munich
ISSN
1541-7719
Print_ISBN
978-0-7695-3373-5
Type
conf
DOI
10.1109/EDOC.2008.36
Filename
4634788
Link To Document